Gridinsoft Logo
File Icon

The RegRun Suite (Greatis Software Updater) File Analysis

Technical Analysis

File Name wu.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows
Scanner Version 1.0.210.174
Database Version 2025-03-07 02:00:38 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
4,753,816
File Size (bytes)
2025-03-07
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
7a561ae855ed7ed847ff23d5e4968085
SHA1
6627b693db3a58d7e1c39c38b9ceb46831851d44
SHA256
7751d1a8bab64fef2f76ef21eff9b6ea128f4eb62fac3e622b0301fce182a572
SHA512
0d3c22f28e468bea58d17eb65892d4dbf1af4b1c69ce2612996464bf2986234332479a41ddb2409b38d0d44f3e258dbfb0620bf544b6b416884ac4c0af5aae9d
ImpHash
a7c4d91a9532f1e2964a93ef0cb848ad

PE Analysis

Basic Information

Icon
Hash: 29c54f84007930d15b36c5adc39ac93f
Fuzzy: ddc8d87d5217447f4d2a53f090d5d87b
dHash: 71f8bc9e9edadafa
Image Base 0x00400000
Entry Point 0x00401a8c
Compilation Time 2024-04-22 11:34:32
Checksum 0x00496fda (Actual: 0x00496fda)
OS Version 4.0
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
Digital Signature OK
Imports 14 libraries
Exports 8357 functions
Resources 145 Resources
Sections 8 Sections

Version Information

CompanyName Greatis Software
FileDescription Greatis Software Updater
FileVersion 16.0.24.423
InternalName wu.exe
LegalCopyright Greatis Software
LegalTrademarks
OriginalFilename wu.exe
ProductName RegRun Suite
ProductVersion 15.40
Comments http://www.greatis.com
Translation 0x0409 0x04e4

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 3,289,088 bytes 3,288,576 bytes 6.32 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 93119843D6794DF7B95A03D14D96F16A
.data 0x00324000 176,128 bytes 152,576 bytes 5.60 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 2A2A97C42B80E6185B6C00725274FA50
.tls 0x0034f000 4,096 bytes 512 bytes 0.00 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE BF619EAC0CDF3F68D496EA9344137E8B
.rdata 0x00350000 4,096 bytes 512 bytes 0.19 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_SHARED|IMAGE_SCN_MEM_READ 9F288398F887D1856DC580CE8E8D553B
.idata 0x00351000 16,384 bytes 14,336 bytes 5.20 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 19EB32ACC2C772AF2DAC2025034B12B2
.edata 0x00355000 483,328 bytes 483,328 bytes 5.90 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ A32676483CE1E3E50F665C9D7F166EA0
.rsrc 0x003cb000 651,264 bytes 651,264 bytes 7.14 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ A93F4328114727C8168896A9B39CB5B3
.reloc 0x0046a000 151,552 bytes 150,528 bytes 6.62 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_SHARED|IMAGE_SCN_MEM_READ 2E2317784582E5D4B60E92996E1C51B2
Entropy Analysis Alert

2 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 145 (642,354 bytes)
Resource Type Count Total Size Percentage
RT_CURSOR 8 2,464 bytes
0.4%
RT_BITMAP 57 43,796 bytes
6.8%
RT_ICON 6 18,800 bytes
2.9%
RT_DIALOG 1 82 bytes
0%
RT_STRING 40 29,602 bytes
4.6%
RT_RCDATA 22 546,170 bytes
85%
RT_GROUP_CURSOR 8 160 bytes
0%
RT_GROUP_ICON 1 90 bytes
0%
RT_VERSION 1 836 bytes
0.1%
RT_MANIFEST 1 354 bytes
0.1%

Certificate Chain Analysis

Certificate Information
Product RegRun Suite
Description Greatis Software Updater
File Version 16.0.24.423
Original Name wu.exe
Signing Date 02:49 PM 06/13/2024 (359 days ago)
Verification Status Signed
Signers Greatis Software LLC; Sectigo Public Code Signing CA EV R36; Sectigo Public Code Signing Root R46; Sectigo (AAA)
Counter Signers Sectigo RSA Time Stamping Signer #4; Sectigo RSA Time Stamping CA; Sectigo
Internal Name wu.exe
Copyright Greatis Software
Certificate Chain Summary
Sectigo Public Code Signing Root R46 #1 Primary
Validity Period: 2021-05-25 00:00:00 → 2028-12-31 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 48 FC 93 B4 60 55 94 8D 36 A7 C9 8A 89 D6 94 16
Sectigo Public Code Signing CA EV R36 #2 Chain
Validity Period: 2021-03-22 00:00:00 → 2036-03-21 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 33 D7 08 A8 91 40 53 19 E2 A5 BB D3 39 B9 AD 6E
Greatis Software LLC #3 Chain
Validity Period: 2023-04-14 00:00:00 → 2025-04-13 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 0D A3 BB 19 EB 0F CF EF 5D F6 7F 2C 90 86 91 3F
Sectigo RSA Time Stamping Signer #4 #4 Chain
Validity Period: 2023-05-03 00:00:00 → 2034-08-02 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 39 4C 25 E1 7C A0 6D 27 A8 65 E2 3B D9 1D 22 D4
Sectigo RSA Time Stamping CA #5 Chain
Validity Period: 2019-05-02 00:00:00 → 2038-01-18 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 30 0F 6F AC DD 66 98 74 7C A9 46 36 A7 78 2D B9

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware